4

CVE-2010-2426

Exploit
Directory traversal vulnerability in TitanFTPd in South River Technologies Titan FTP Server 8.10.1125, and probably earlier versions, allows remote authenticated users to read arbitrary files, determine file size, via "..//" sequences in the xcrc command.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
SouthrivertechTitan Ftp Server Version <= 8.10.1125
SouthrivertechTitan Ftp Server Version1.0.17
SouthrivertechTitan Ftp Server Version1.0.18
SouthrivertechTitan Ftp Server Version1.0.19
SouthrivertechTitan Ftp Server Version1.0.20
SouthrivertechTitan Ftp Server Version1.0.21
SouthrivertechTitan Ftp Server Version1.0.22
SouthrivertechTitan Ftp Server Version1.0.23
SouthrivertechTitan Ftp Server Version1.0.24
SouthrivertechTitan Ftp Server Version1.0.25
SouthrivertechTitan Ftp Server Version1.0.26
SouthrivertechTitan Ftp Server Version1.0.27
SouthrivertechTitan Ftp Server Version1.0.28
SouthrivertechTitan Ftp Server Version1.0.29
SouthrivertechTitan Ftp Server Version1.0.30
SouthrivertechTitan Ftp Server Version1.0.31
SouthrivertechTitan Ftp Server Version1.1.33
SouthrivertechTitan Ftp Server Version1.11.34
SouthrivertechTitan Ftp Server Version2.0.44 Updatebeta
SouthrivertechTitan Ftp Server Version2.00.95
SouthrivertechTitan Ftp Server Version2.01.96
SouthrivertechTitan Ftp Server Version2.02.99
SouthrivertechTitan Ftp Server Version2.10.119
SouthrivertechTitan Ftp Server Version2.10.120
SouthrivertechTitan Ftp Server Version2.10.121
SouthrivertechTitan Ftp Server Version2.11.132
SouthrivertechTitan Ftp Server Version2.20.140
SouthrivertechTitan Ftp Server Version2.21.142
SouthrivertechTitan Ftp Server Version2.30.151
SouthrivertechTitan Ftp Server Version2.31.152
SouthrivertechTitan Ftp Server Version2.40.155
SouthrivertechTitan Ftp Server Version3.00.162
SouthrivertechTitan Ftp Server Version3.01.163
SouthrivertechTitan Ftp Server Version3.02.165
SouthrivertechTitan Ftp Server Version3.10.169
SouthrivertechTitan Ftp Server Version3.12.172
SouthrivertechTitan Ftp Server Version3.20.175
SouthrivertechTitan Ftp Server Version3.21.177
SouthrivertechTitan Ftp Server Version3.22.178
SouthrivertechTitan Ftp Server Version3.30.186
SouthrivertechTitan Ftp Server Version4.00.245
SouthrivertechTitan Ftp Server Version4.01.246
SouthrivertechTitan Ftp Server Version4.02.248
SouthrivertechTitan Ftp Server Version4.03.249
SouthrivertechTitan Ftp Server Version4.05.252
SouthrivertechTitan Ftp Server Version4.10.256
SouthrivertechTitan Ftp Server Version4.11.257
SouthrivertechTitan Ftp Server Version4.13.260
SouthrivertechTitan Ftp Server Version4.14.261
SouthrivertechTitan Ftp Server Version4.20.263
SouthrivertechTitan Ftp Server Version4.21.264
SouthrivertechTitan Ftp Server Version4.22.265
SouthrivertechTitan Ftp Server Version4.23.266
SouthrivertechTitan Ftp Server Version4.30.269
SouthrivertechTitan Ftp Server Version4.31.272
SouthrivertechTitan Ftp Server Version5.00.303
SouthrivertechTitan Ftp Server Version5.01.306
SouthrivertechTitan Ftp Server Version5.02.307
SouthrivertechTitan Ftp Server Version5.03.308
SouthrivertechTitan Ftp Server Version5.03.309
SouthrivertechTitan Ftp Server Version5.03.310
SouthrivertechTitan Ftp Server Version5.04.311
SouthrivertechTitan Ftp Server Version5.04.312
SouthrivertechTitan Ftp Server Version5.04.313
SouthrivertechTitan Ftp Server Version5.04.314
SouthrivertechTitan Ftp Server Version5.04.315
SouthrivertechTitan Ftp Server Version5.05.316
SouthrivertechTitan Ftp Server Version5.05.317
SouthrivertechTitan Ftp Server Version5.05.318
SouthrivertechTitan Ftp Server Version5.05.319
SouthrivertechTitan Ftp Server Version5.05.320
SouthrivertechTitan Ftp Server Version5.05.321
SouthrivertechTitan Ftp Server Version5.05.322
SouthrivertechTitan Ftp Server Version5.05.323
SouthrivertechTitan Ftp Server Version5.05.324
SouthrivertechTitan Ftp Server Version5.05.325
SouthrivertechTitan Ftp Server Version5.05.326
SouthrivertechTitan Ftp Server Version5.05.327
SouthrivertechTitan Ftp Server Version5.10.328
SouthrivertechTitan Ftp Server Version5.10.329
SouthrivertechTitan Ftp Server Version5.11.330
SouthrivertechTitan Ftp Server Version5.11.331
SouthrivertechTitan Ftp Server Version5.12.332
SouthrivertechTitan Ftp Server Version5.12.333
SouthrivertechTitan Ftp Server Version5.12.334
SouthrivertechTitan Ftp Server Version5.12.335
SouthrivertechTitan Ftp Server Version5.12.336
SouthrivertechTitan Ftp Server Version5.20.342
SouthrivertechTitan Ftp Server Version5.21.347
SouthrivertechTitan Ftp Server Version5.22.350
SouthrivertechTitan Ftp Server Version5.23.351
SouthrivertechTitan Ftp Server Version5.24.352
SouthrivertechTitan Ftp Server Version5.25.356
SouthrivertechTitan Ftp Server Version5.26.361
SouthrivertechTitan Ftp Server Version5.27.362
SouthrivertechTitan Ftp Server Version5.30.367
SouthrivertechTitan Ftp Server Version5.31.373
SouthrivertechTitan Ftp Server Version5.32.376
SouthrivertechTitan Ftp Server Version5.33.380
SouthrivertechTitan Ftp Server Version5.33.381
SouthrivertechTitan Ftp Server Version5.35.385
SouthrivertechTitan Ftp Server Version5.36.386
SouthrivertechTitan Ftp Server Version5.37.387
SouthrivertechTitan Ftp Server Version5.38.388
SouthrivertechTitan Ftp Server Version5.39.389
SouthrivertechTitan Ftp Server Version6.00.492
SouthrivertechTitan Ftp Server Version6.01.512
SouthrivertechTitan Ftp Server Version6.03.537
SouthrivertechTitan Ftp Server Version6.04.545
SouthrivertechTitan Ftp Server Version6.05.550
SouthrivertechTitan Ftp Server Version6.06.555
SouthrivertechTitan Ftp Server Version6.10.560
SouthrivertechTitan Ftp Server Version6.20.587
SouthrivertechTitan Ftp Server Version6.21.596
SouthrivertechTitan Ftp Server Version6.23.616
SouthrivertechTitan Ftp Server Version6.24.621
SouthrivertechTitan Ftp Server Version6.25.622
SouthrivertechTitan Ftp Server Version6.26.630
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 30.24% 0.965
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 4 8 2.9
AV:N/AC:L/Au:S/C:P/I:N/A:N
CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

The product uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the product does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory.